Senior Network Security Architect

NTT DATA, Inc.
San Jose, CA, United States
3 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$166,650.0 - $187,200.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Border Gateway Protocol Cloud Computing Cloud Computing Security Cloud Engineering Complex Networks Cyber Security Dynamic Host Configuration Protocol Domain Name System Security Extensions
+27 more
Domain Name System (DNS) Internet Protocol Security (IP SEC) Intrusion Detection and Prevention Virtual Private Networks (VPN) Multi-protocol Systems Python (Programming Language) Network Security Routing Network Segmentation Open Shortest Path First (OSPF) Windows PowerShell Remote Access Technology Ansible Zero Trust Network Access Security Information and Event Management TCP/IP Virtual Local Area Networks Data Logging Computer Networking Systems Transport Layer Security Cloud Platform System Firewalls (Computer Science) Cybercrime Palo Alto Networks Routing & Switching Cloud Integration Terraform

Job description

NTT DATA’s Client is seeking an experienced Senior Network Security Architect to design, implement, manage, and optimize enterprise network security infrastructure with a strong focus on Palo Alto Networks NGFW, Panorama, Strata Cloud Manager (SCM), and Zscaler (ZIA/ZPA) technologies. The ideal candidate will serve as a senior technical resource responsible for securing enterprise networks, cloud environments, remote access, and Zero Trust architectures while ensuring operational excellence and compliance with security standards., Palo Alto Security Administration

  • Design, deploy, and support Palo Alto Next-Generation Firewalls (NGFW) across enterprise environments.
  • Manage and troubleshoot:
  • Security policies
  • NAT
  • VPNs
  • Routing
  • App-ID / User-ID
  • SSL Decryption
  • URL Filtering
  • DNS Security
  • WildFire
  • Threat Prevention
  • Perform firewall upgrades, migrations, hardware refreshes, and HA deployments.
  • Conduct rule reviews, policy optimization, and security audits.
  • Lead troubleshooting and root cause analysis for security incidents.

Panorama & Strata Cloud Manager (SCM)

  • Manage large-scale firewall environments using Panorama and SCM.
  • Develop centralized policy management and governance standards.
  • Manage device onboarding, logging, policy consistency, and visibility.
  • Utilize SCM policy analyzer and posture management features.
  • Support security compliance and posture improvement initiatives.

Zscaler Administration

  • Design, deploy, and administer Zscaler ZIA and ZPA solutions.
  • Configure and manage:
  • Application Segments
  • App Connectors
  • Service Edges
  • Access Policies
  • Browser Access
  • Security Policies
  • SSL Inspection
  • Cloud Firewall
  • Data Protection Controls
  • Support Zero Trust initiatives.
  • Troubleshoot connectivity, authentication, and application access issues.
  • Lead migrations from traditional VPN solutions to ZPA.

Security Operations & Cloud Integration

  • Monitor and respond to security incidents and vulnerabilities.
  • Perform threat hunting and security investigations.
  • Collaborate with SOC, Cloud, Infrastructure, and Application teams.
  • Support compliance frameworks including:
  • NIST
  • CIS
  • ISO 27001
  • Secure Azure and AWS environments using Palo Alto and cloud-native controls.
  • Deploy and support Palo Alto VM-Series firewalls.
  • Integrate security platforms with SIEM and ticketing tools.
  • Automate security operations using APIs, Python, PowerShell, or Terraform.

Requirements

The role requires hands-on expertise in enterprise security operations, firewall policy management, threat prevention, cloud security, secure remote access, and troubleshooting complex network security issues. Experience with Palo Alto centralized management platforms including Panorama and Strata Cloud Manager, along with Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA), is essential., * 12+ years of Network Security / Security Engineering experience.

  • 10+ years of hands-on Palo Alto Networks firewall experience.
  • 10+ years managing Panorama environments.
  • Hands-on experience with Strata Cloud Manager (SCM).
  • 4+ years supporting Zscaler ZIA and ZPA solutions.
  • Experience supporting enterprise-scale security operations.

Core Technical Skills, * Palo Alto NGFW Administration

  • Panorama Management
  • Strata Cloud Manager (SCM)
  • Palo Alto Logging Service
  • SSL Decryption
  • Threat Prevention
  • WildFire
  • DNS Security
  • URL Filtering
  • NAT & Security Policy Management
  • Site-to-Site VPN & IPSec VPN

Zscaler Technologies

  • ZIA (Zscaler Internet Access)
  • ZPA (Zscaler Private Access)
  • Zscaler Client Connector (ZCC)
  • Zero Trust Architecture
  • Cloud Firewall
  • SSL Inspection
  • Application Segmentation
  • Identity-Based Access Control

Networking

  • TCP/IP
  • DNS
  • DHCP
  • VLANs
  • Network Segmentation
  • Routing & Switching
  • BGP
  • OSPF
  • MPLS
  • IPSec

Cloud & Automation

  • Microsoft Azure
  • AWS
  • Cloud Security Architecture
  • SASE / SSE Platforms
  • Python
  • PowerShell
  • Terraform

Preferred Qualifications

  • PCNSE (Palo Alto Certified Network Security Engineer)
  • Palo Alto Strata Cloud Manager Certification
  • Zscaler Certified Administrator (ZCCA)
  • Zscaler Certified Architect (ZCCA / ZCCA-IA)
  • CISSP, CISM, or CCSP
  • Experience with Terraform and/or Ansible
  • Scripting and automation experience

Key Competencies

  • Advanced troubleshooting and analytical skills.
  • Strong communication and stakeholder management abilities.
  • Experience leading security projects and major incident response efforts.
  • Deep understanding of Zero Trust, SASE, and enterprise security architecture.
  • Ability to work independently in a large enterprise environment.
  • Experience mentoring junior engineers and promoting security best practices.

Benefits & conditions

Where required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting hourly range for this remote role is ($80.12 - 90/hourly ) . This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on several factors, including the candidate’s actual work location, relevant experience, technical skills, and other qualifications.

This position is eligible for company benefits that will depend on the nature of the role offered. Company benefits may include medical, dental, and vision insurance, flexible spending or health savings account, life, and AD&D insurance, short-and long-term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally required benefits.

About the company

At NTT DATA, we know that with the right people on board, anything is possible. The quality, integrity, and commitment of our employees have been key factors in our company’s growth and market presence. By hiring the best people and helping them grow both professionally and personally, we ensure a bright future for NTT DATA and for the people who work here.

For more than 25 years, NTT DATA Services have focused on impacting the core of your business operations with industry-leading outsourcing services and automation. With our industry-specific platforms, we deliver continuous value addition, and innovation that will improve your business outcomes. Outsourcing is not just a method of gaining a one-time cost advantage, but an effective strategy for gaining and maintaining competitive advantages when executed as part of an overall sourcing strategy., NTT DATA Services is a recognized leader in IT and business services, including cloud, data and applications, headquartered in Texas. As part of NTT DATA, a $30 billion trusted global innovator with a combined global reach of over 80 countries, we help clients transform through business and technology consulting, industry and digital solutions, applications development and management, managed edge-to-cloud infrastructure services, BPO, systems integration and global data centers. We are committed to our clients’ long-term success. Visit nttdata.com or LinkedIn to learn more.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

3:19 min

Executing complex workflows using Ansible Automation Platform

Goetz Rieger Goetz Rieger · World Congress 2025

Videos

See all

Related articles

See all